NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49269 | CVE-2009-2007 | Multiple directory traversal vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to (1) read portions of arbitrary files via a .. (dot dot) and a .. (dot dot backslash) in the lang parameter to main/exercice/hotspot_lang_conversion.php and (2) read arbitrary files via a .. (dot dot) in the doc_url parameter to main/exercice/Hpdownload.php. | 2 | 5 | Medium | 2017-01-07 | 2009-06-09 | View | |
| 49014 | CVE-2009-1745 | Armorlogic Profense Web Application Firewall before 2.2.22, and 2.4.x before 2.4.4, has a default root password hash, and permits password-based root logins over SSH, which makes it easier for remote attackers to obtain access. | 2 | 10 | High | 2017-01-07 | 2009-06-09 | View | |
| 49015 | CVE-2009-1746 | SQL injection vulnerability in berita.php in Dian Gemilang DGNews 3.0 Beta allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action. | 2 | 7.5 | High | 2017-01-07 | 2009-06-09 | View | |
| 49272 | CVE-2009-2010 | Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.9 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) thread parameter to messageboard.php, (2) member parameter to profile.php, (3) pid parameter to gallery/index.php, and the (4) fcms_login_id cookie parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2009-06-09 | View | |
| 49017 | CVE-2009-1748 | Multiple directory traversal vulnerabilities in index.php in Catviz 0.4.0 Beta 1 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) webpages_form or (2) userman_form parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-06-09 | View |
Page 14553 of 17672, showing 5 records out of 88360 total, starting on record 72761, ending on 72765